Class AuthorizationServerSettings
java.lang.Object
com.codename1.backend.security.oauth2.server.authorization.AuthorizationServerSettings
Who the authorization server is and where its endpoints are.
http.authorizationServer(as -> as.settings(AuthorizationServerSettings.builder()
.issuer("https://id.example.com").build()));
The issuer is the address clients reach this server at, with no trailing
slash; it is the iss of every token and the base of every address in the
metadata. It can also be given as cn1.security.authorizationserver.issuer.
Outside a development profile it must be given one way or the other: an
issuer read off a request is whatever the request's Host header said. On
a development profile, with neither, it is taken from the request.
-
Nested Class Summary
Nested Classes -
Field Summary
Fields -
Method Summary
Modifier and TypeMethodDescriptionbuilder()/oauth2/authorizeunless set.Theaudof an access token whose request named noresource, or null for the configured one, and the issuer when there is none./oauth2/device_authorizationunless set./oauth2/device_verificationunless set.The issuer, or null to read it from the configuration./oauth2/jwksunless set./userinfounless set./oauth2/tokenunless set./oauth2/revokeunless set.static StringvalidIssuer(String issuer) issuer, required to be anhttporhttpsaddress with no query, no fragment and no trailing slash, as RFC 8414 asks of one.
-
Field Details
-
ISSUER
-
AUDIENCE
The setting that holds the default audience; seeAuthorizationServerSettings.Builder.defaultAudience.- See Also:
-
-
Method Details
-
builder
-
getIssuer
The issuer, or null to read it from the configuration. -
getDefaultAudience
Theaudof an access token whose request named noresource, or null for the configured one, and the issuer when there is none. -
getAuthorizationEndpoint
/oauth2/authorizeunless set. -
getTokenEndpoint
/oauth2/tokenunless set. -
getJwkSetEndpoint
/oauth2/jwksunless set. -
getTokenRevocationEndpoint
/oauth2/revokeunless set. -
getDeviceAuthorizationEndpoint
/oauth2/device_authorizationunless set. -
getDeviceVerificationEndpoint
/oauth2/device_verificationunless set. -
getOidcUserInfoEndpoint
/userinfounless set. -
validIssuer
-